FlawAtlas
Search the atlas
USN-5062-1 Not scored

linux, linux-aws, linux-kvm, linux-lts-xenial vulnerability

Maxim Levitsky discovered that the KVM hypervisor implementation for AMD processors in the Linux kernel did not properly prevent a guest VM from enabling AVIC in nested guest VMs. An attacker in a guest VM could use this to write to portions of the host's physical memory.

Exploit probability Not scored
Published September 8, 2021
Required by Not available
Last source change June 29, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:Pro:14.04:LTS linux-aws

65 explicit affected versions

Ubuntu:Pro:14.04:LTS linux-lts-xenial

109 explicit affected versions

Ubuntu:Pro:16.04:LTS linux

131 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-aws

87 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-kvm

66 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities USN-5062-1

Maxim Levitsky discovered that the KVM hypervisor implementation for AMD processors in the Linux kernel did not properly prevent a guest VM from enabling AVIC in nested guest VMs. An attacker in a guest VM could use this to write to portions of the host's physical memory.

View original source

05 / REFERENCES

Further evidence